Nessus Bridge for Metasploit :: Plugin Commands

Welcome to part 5 of my Nessus Bridge for Metasploit coverage.  Here is part 1part 2part 3 and part 4 if you are just joining us.

Next up are the plugin commands.  These helpful little beasts are all about showing you what plugins are available on your nessus server, and how many of them you have.

  • nessus_plugin_list
  • nessus_plugin_family
  • nessus_plugin_details
  • nessus_plugin_prefs

Given that nessus has over 38,000 plugins, simply asking it to list them all would result in a very large list returned from the server.  Nessus gets around this by breaking the request down into several parts. (more…)


Posted in Bananas, Security, Stuff, Technology, Things and tagged , , , , , , , , , , , , , , , , , by with no comments yet.

Nessus Bridge for Metasploit :: Report Commands

Welcome to part 3 of my Nessus Bridge for Metasploit coverage.  Here is part 1 and part 2 if you are just joining us.

Report commands are where we get to actually do things.  They concist of some commands to manage/import reports directly on your Nessus server.  No more going to the web console, exporting a report, moving it to your msf box and running db_import_nessus to get it into your workspace and available to db_autopwn or work with.

The implemented (so far) commands are:

  • nessus_report_list
  • nessus_report_get
  • nessus_report_hosts
  • nessus_report_host_ports
  • nessus_report_host_detail

Ok, make sure you are loaded up and authed to your server and we will check these out. (more…)


Posted in Bananas and tagged , , , , , , , , , , , , by with no comments yet.